反病毒引擎 版本 最后更新 扫描结果
a-squared 4.0.0.101 2009.03.02 Trojan.Win32.Delf.iqd!A2
AhnLab-V3 5.0.0.2 2009.02.27 Win-Trojan/Xema.variant
AntiVir 7.9.0.98 2009.03.02 TR/Crypt.XPACK.Gen
Authentium 5.1.0.4 2009.03.02 W32/Backdoor2.DVZK
Avast 4.8.1335.0 2009.03.02 -
AVG 8.0.0.237 2009.03.01 -
BitDefender 7.2 2009.03.02 -
CAT-QuickHeal 10.00 2009.03.02 (Suspicious) - DNAScan
ClamAV 0.94.1 2009.03.02 -
Comodo 986 2009.02.20 -
DrWeb 4.44.0.09170 2009.03.02 -
eSafe 7.0.17.0 2009.03.02 Suspicious File
eTrust-Vet 31.6.6380 2009.03.02 -
F-Prot 4.4.4.56 2009.03.02 W32/Backdoor2.DVZK
F-Secure 8.0.14470.0 2009.03.02 -
Fortinet 3.117.0.0 2009.03.02 -
GData 19 2009.03.02 -
Ikarus T3.1.1.45.0 2009.03.02 -
K7AntiVirus 7.10.654 2009.03.02 -
Kaspersky 7.0.0.125 2009.03.02 -
McAfee 5541 2009.03.02 -
McAfee+Artemis 5541 2009.03.02 -
Microsoft 1.4306 2009.03.02 Trojan:Win32/Redosdru.C
NOD32 3901 2009.03.02 -
Norman 6.00.06 2009.03.02 -
nProtect 2009.1.8.0 2009.03.02 Trojan-Dropper/W32.Agent.37376.H
Panda 10.0.0.10 2009.03.02 -
PCTools 4.4.2.0 2009.03.02 -
Prevx1 V2 2009.03.02 -
Rising 21.19.02.00 2009.03.02 Binder.Win32.Agent.ao
SecureWeb-Gateway 6.7.6 2009.03.02 Trojan.Crypt.XPACK.Gen
Sophos 4.39.0 2009.03.02 -
Sunbelt 3.2.1858.2 2009.03.02 BehavesLike.Win32.Malware (v)
Symantec 10 2009.03.02 -
TheHacker 6.3.2.6.268 2009.03.01 -
TrendMicro 8.700.0.1004 2009.03.02 PAK_Generic.001
VBA32 3.12.10.1 2009.03.01 Trojan.Win32.Delf.jif
ViRobot 2009.3.2.1630 2009.03.02 Dropper.Small.396800
VirusBuster 4.5.11.0 2009.03.02 -
附加信息
File size: 60416 bytes
MD5...: 1e71175ea82f736d9995eb2522b9dcad
SHA1..: ba55ba273e27f615d32f8a1fc8d41668fea95b31
SHA256: fc4ce33b6dfddc56178c4eb6772d36b352f985193ecc1fd8f926c8393920762e
SHA512: 6f0566517a95c10e93737ad6759e7249eccf28ae000f271463c1be0523a6487a
9a18897331fac36dd025cd0a9b1333938255f07811e3ebf09b6c1820fa41ea26
ssdeep: 1536:JAxNx0J1xtXjQqpOENLqHn6zaz6w7c1VPP:JA7CjxTpOnuaz6gc1lP
PEiD..: -
TrID..: File type identification
Generic Win/DOS Executable (49.8%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
MS Flight Simulator Aircraft Performance Info (0.0%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x11dc
timedatestamp.....: 0x496ce710 (Tue Jan 13 19:10:08 2009)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x446 0x600 4.68 f7ee82c96aeb8d79413362edd2e80416
.data 0x2000 0xe000 0xd400 7.94 76161521c050d3cb302586cc3981bfd9
.rsrc 0x10000 0x1000 0x1000 4.52 310f74e03c58629941a6704b0c81406d
( 2 imports )
> KERNEL32.dll: CloseHandle, WriteFile, CreateFileA, DeleteFileA, lstrcpyA, lstrlenA, GetTempFileNameA, GetTempPathA, GlobalAlloc, ExitProcess, GetCommandLineA, GetModuleHandleA
> SHELL32.dll: ShellExecuteA
( 0 exports )